A security manager at a retail organization is establishing a threat research and information-sharing strategy. Management wants to receive timely early warnings regarding cyber threats specifically targeting the retail sector and securely exchange anonymized threat telemetry with industry peers. Which of the following sources or mechanisms best fulfills these organizational requirements?
- Participating in a retail sector Information Sharing and Analysis Center (ISAC)Cevap
- BDeploying an inline Web Application Firewall (WAF) across perimeter web applications
- CEstablishing a high-interaction honeypot on the external perimeter network
- DQuerying the National Vulnerability Database (NVD) for adversary campaign trends
Cevap
Participating in a retail sector Information Sharing and Analysis Center (ISAC)
Participating in a sector-specific Information Sharing and Analysis Center (ISAC) allows organizations within a shared industry (such as retail, financial, or healthcare) to receive targeted threat intelligence alerts and securely exchange anonymized indicators of compromise with peer entities.
Adım Adım Çözüm
Anahtar Kavram
Information Sharing and Analysis Centers (ISACs)